CVE-2017-15327: Infoleak
S12700 V200R005C00, V200R006C00, V200R006C01, V200R007C00, V200R007C01, V200R007C20, V200R008C00, V200R008C06, V200R009C00, V200R010C00, S7700 V200R001C00, V200R001C01, V200R002C00, V200R003C00, V200R005C00, V200R006C00, V200R006C01, V200R007C00, V200R007C01, V200R008C00, V200R008C06, V200R009C00, V200R010C00, S9700 V200R001C00, V200R001C01, V200R002C00, V200R003C00, V200R005C00, V200R006C00, V200R006C01, V200R007C00, V200R007C01, V200R008C00, V200R009C00, V200R010C00 have an improper authorization vulnerability on Huawei switch products. The system incorrectly performs an authorization check when a normal user attempts to access certain information which is supposed to be accessed only by authenticated user. Successful exploit could cause information disclosure.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-15327?
The severity of CVE-2017-15327 is medium (4.3).
Which products are affected by CVE-2017-15327?
Huawei S12700 Firmware versions V200R005C00 to V200R010C00 and Huawei S7700 Firmware versions V200R001C00 to V200R010C00 are affected by CVE-2017-15327.
What is the Common Weakness Enumeration (CWE) ID for CVE-2017-15327?
The Common Weakness Enumeration (CWE) ID for CVE-2017-15327 is CWE-200.
How severe is CVE-2017-15327?
CVE-2017-15327 has a severity value of 4.3, which is medium.
How can I fix CVE-2017-15327?
To fix CVE-2017-15327, update your Huawei S12700 Firmware to versions V200R011C00 or later, and update your Huawei S7700 Firmware to versions V200R011C00 or later.